Re: Views, views, views: Summary of Arguments

Поиск
Список
Период
Сортировка
От Josh Berkus
Тема Re: Views, views, views: Summary of Arguments
Дата
Msg-id 200505130930.41662.josh@agliodbs.com
обсуждение исходный текст
Ответ на Re: Views, views, views: Summary of Arguments  (Andrew Dunstan <andrew@dunslane.net>)
Ответы Re: Views, views, views: Summary of Arguments  (Tom Lane <tgl@sss.pgh.pa.us>)
Re: Views, views, views: Summary of Arguments  (Andrew Dunstan <andrew@dunslane.net>)
Список pgsql-hackers
Andrew, Merlin,

> My approach was to remove all significant permissions (including on the
> catalog) from public and regrant them to a pseudopublic group,
> comprising designated users. The designated users would notice no
> difference at all, while everyone else would be able to see only what
> was explicitly granted to them. But there would be lots of testing and
> thinking to be done before releasing it into the wild :-)

<plug>Doesn't it seem like a really complete set of system views (based on 
information_schema or otherwise) would potentially allow securing the 
pg_catalog?</plug>

-- 
Josh Berkus
Aglio Database Solutions
San Francisco


В списке pgsql-hackers по дате отправления:

Предыдущее
От: Andrew Dunstan
Дата:
Сообщение: Re: Views, views, views: Summary of Arguments
Следующее
От: Tom Lane
Дата:
Сообщение: Re: Views, views, views: Summary of Arguments